Hi! Please let me know if I've reached the proper group. I am going through neutron's code and have a few questions. 1. I understood that a. 'securitygroups' enables intra-subnet "firewall" and is aimed to allow/deny traffic between tenants. b. 'FWaaS' enables inter-subnet "firewall" and is aimed to allow/deny traffic within tenant. c. Did I understand correctly? 2. Does a securitygroup rule generation have effect on the perimeter firewall of the cloud? Regards Israel Ziv -------------- next part -------------- An HTML attachment was scrubbed... URL: <http://lists.openstack.org/pipermail/openstack-dev/attachments/20140615/4cd25740/attachment.html>